CVE-2020-24292: Freeimage Project Freeimage
High severity, CVSS 8.8. EPSS: 1.5% chance of exploitation in the next 30 days.
Buffer Overflow vulnerability in load function in PluginICO.cpp in FreeImage 3.19.0 [r1859] allows remote attackers to run arbitrary code via opening of crafted ico file.
Affected products
- Freeimage Project Freeimage: version 3.19.0 only
Published 2023-08-22. Last modified 2026-06-17.